Search
00
GBAF Logo
trophy
Top StoriesInterviewsBusinessFinanceBankingTechnologyInvestingTradingVideosAwardsMagazinesHeadlinesTrends

Subscribe to our newsletter

Get the latest news and updates from our team.

Global Banking & Finance Review®

Global Banking & Finance Review® - Subscribe to our newsletter

Company

    GBAF Logo
    • About Us
    • Advertising and Sponsorship
    • Profile & Readership
    • Contact Us
    • Latest News
    • Privacy & Cookies Policies
    • Terms of Use
    • Advertising Terms
    • Issue 81
    • Issue 80
    • Issue 79
    • Issue 78
    • Issue 77
    • Issue 76
    • Issue 75
    • Issue 74
    • Issue 73
    • Issue 72
    • Issue 71
    • Issue 70
    • View All
    • About the Awards
    • Awards Timetable
    • Awards Winners
    • Submit Nominations
    • Testimonials
    • Media Room
    • FAQ
    • Asset Management Awards
    • Brand of the Year Awards
    • Business Awards
    • Cash Management Banking Awards
    • Banking Technology Awards
    • CEO Awards
    • Customer Service Awards
    • CSR Awards
    • Deal of the Year Awards
    • Corporate Governance Awards
    • Corporate Banking Awards
    • Digital Transformation Awards
    • Fintech Awards
    • Education & Training Awards
    • ESG & Sustainability Awards
    • ESG Awards
    • Forex Banking Awards
    • Innovation Awards
    • Insurance & Takaful Awards
    • Investment Banking Awards
    • Investor Relations Awards
    • Leadership Awards
    • Islamic Banking Awards
    • Real Estate Awards
    • Project Finance Awards
    • Process & Product Awards
    • Telecommunication Awards
    • HR & Recruitment Awards
    • Trade Finance Awards
    • The Next 100 Global Awards
    • Wealth Management Awards
    • Travel Awards
    • Years of Excellence Awards
    • Publishing Principles
    • Ownership & Funding
    • Corrections Policy
    • Editorial Code of Ethics
    • Diversity & Inclusion Policy
    • Fact Checking Policy
    Original content: Global Banking and Finance Review - https://www.globalbankingandfinance.com

    A global financial intelligence and recognition platform delivering authoritative insights, data-driven analysis, and institutional benchmarking across Banking, Capital Markets, Investment, Technology, and Financial Infrastructure.

    Copyright © 2010-2026 - All Rights Reserved. | Sitemap | Tags

    Editorial & Advertiser disclosure

    Global Banking & Finance Review® is an online platform offering news, analysis, and opinion on the latest trends, developments, and innovations in the banking and finance industry worldwide. The platform covers a diverse range of topics, including banking, insurance, investment, wealth management, fintech, and regulatory issues. The website publishes news, press releases, opinion and advertorials on various financial organizations, products and services which are commissioned from various Companies, Organizations, PR agencies, Bloggers etc. These commissioned articles are commercial in nature. This is not to be considered as financial advice and should be considered only for information purposes. It does not reflect the views or opinion of our website and is not to be considered an endorsement or a recommendation. We cannot guarantee the accuracy or applicability of any information provided with respect to your individual or personal circumstances. Please seek Professional advice from a qualified professional before making any financial decisions. We link to various third-party websites, affiliate sales networks, and to our advertising partners websites. When you view or click on certain links available on our articles, our partners may compensate us for displaying the content to you or make a purchase or fill a form. This will not incur any additional charges to you. To make things simpler for you to identity or distinguish advertised or sponsored articles or links, you may consider all articles or links hosted on our site as a commercial article placement. We will not be responsible for any loss you may suffer as a result of any omission or inaccuracy on the website.

    1. Home
    2. >Finance
    3. >Why legacy access permissions need to be of greater concern for financial organisations
    Finance

    Why Legacy Access Permissions Need to Be of Greater Concern for Financial Organisations

    Published by Jessica Weisman-Pitts

    Posted on May 15, 2024

    5 min read

    Last updated: January 30, 2026

    Add as preferred source on Google
    This image depicts business professionals engaged in a discussion about the importance of managing legacy access permissions in financial organizations. It highlights the critical need for security and compliance in the finance sector.
    Business professionals discussing legacy access permissions in finance - Global Banking & Finance Review
    Why waste money on news and opinion when you can access them for free?

    Take advantage of our newsletter subscription and stay informed on the go!

    Subscribe

    Tags:securitycompliancerisk managementfinancial servicescybersecurity

    Why legacy access permissions need to be of greater concern for financial organisations

    By Justin Jon Thorne, co-founder of Hydra

    Security is the number one priority for all financial organisations. There’s not simply the universal issue of having client data to protect but the very tangible concern of money, making data breaches and cyber attacks a matter of paramount importance for any business operating within the financial sector. But while the protection of client data and internal security are matters of compliance and taken extremely seriously as such, other areas are more likely to be overlooked, including legacy access to external SaaS platforms.

    SaaS platforms are deployed by almost every contemporary business, whether for marketing or technology, and their management is often outsourced. They’re a highly efficient and cost-effective way to manage a variety of essential tasks. But they also hold the potential to expose businesses to vulnerability.

    Why do financial institutions need to be more aware of legacy access permissions?

    Legacy access is something easily overlooked by financial organisations because it rarely relates to integral inhouse systems, where a simple overview of access permissions will almost always be available. The areas that cause problems are typically third-party SaaS, social media, and advertising platforms. Even if these are managed in-house, access permissions can be difficult to oversee, as each platform will have its own unique security protocols, most of which cannot be answered with the use of password vaults or similar. And while SSO, PAM and IAM platforms are typically routinely deployed within financial businesses, they are simply not compatible with many third-party sites, leaving financial institutions exposed.

    What harm can come from legacy access permissions?

    The failure to remove access permissions from people who no longer have legitimate reason to need them – whether ex-employees or the staff of an agency a business is no longer working with – can lead to a range of potential risks. For some, that risk will take the shape of reputational damage. As Burger King found, even if it’s clearly off-brand, a well-phrased tweet can draw enormous attention and alienate a sector of your audience – and no news spreads faster than a juicy reputation shattering story. For others, it may be sabotage, espionage, or the misappropriation of funds. They are all equally easy to perpetrate for someone with both access and an axe to grind, and can all take a lot of time and effort to recover from. And with so many external channels and SaaS platforms now employed by financial institutions, those risks are dramatically amplified.

    And to increase the jeopardy even further, added to those risks, for financial organisations, there is the further concern of compliance, with GDPR and other regulatory standards to adhere to, the protection of customer privacy even more pressing than it has previously been.

    Why is legacy access so difficult to manage?

    Aside from the fact that there are so many different external channels now in play and that they are incompatible with standard management and security platforms, the security protocols of the individual platforms complicate legacy access permissions. With many social media platforms, for example, users can only access business services when they are linked to their own personal profiles. It can be hard for businesses to gain an overview of who has access to their accounts, making it even more difficult for large businesses with multiple account managers. And that’s not going to change until organisations begin adopting platforms that allow for the complete management of all third-party channels. Platforms that are capable of providing an holistic overview for the business, and a single point of entry for all users, where access permissions can be granted or rescinded quickly and easily, as soon as that access is no longer required.

    The question of legacy access and accountability

    When digital access is abused in any way, fingers are always pointed and the question of accountability raises its head. Because it’s never just the ostensible perpetrator responsible – it’s the person who should have prevented the legacy access from continuing. On the surface level, that could be the line manager in charge of that particular account, or their manager for failing to initiate the correct off-boarding processes. But there’s also an argument that many instances of technical failure should ultimately be the responsibility of the Chief Technical Officer – because unless the tools and the operational practices are in place for employees to use, mistakes will always be made.

    Access permissions for third party and SaaS platform management are rarely considered to be as important as other cyber threats. But in the right set of circumstances, they can be almost as damaging, leading to loss and impacting customer trust. So, it’s time for financial organisations to take the threat more seriously, and to begin to implement processes to ensure that poor legacy access management isn’t the reason for a spike in brand awareness.

    About the Author:

    Justin Jon Thorne, co-founder of Hydra, an innovative SaaS platform providing agencies, brands and digital teams effortless monitoring and management of access to external channels. Providing a single access point to – and a complete overview of all access permissions across – the major social channels, analytics platforms, and ad accounts including Google, Meta and LinkedIn – enabling complete monitoring of contemporary and legacy access.

    Frequently Asked Questions about Why legacy access permissions need to be of greater concern for financial organisations

    1What is legacy access?

    Legacy access refers to permissions granted to users for systems or platforms that are no longer in active use or are outdated, potentially leading to security vulnerabilities.

    2What is cybersecurity?

    Cybersecurity involves protecting computer systems and networks from theft, damage, or unauthorized access, ensuring the confidentiality, integrity, and availability of data.

    3What is compliance in finance?

    Compliance in finance refers to the adherence to laws, regulations, and guidelines that govern financial practices and protect stakeholders' interests.

    4What is risk management?

    Risk management is the process of identifying, assessing, and controlling threats to an organization's capital and earnings, including financial, operational, and reputational risks.

    5What is data breach?

    A data breach is an incident where unauthorized individuals gain access to sensitive or confidential data, often leading to data theft or exposure.

    More from Finance

    Explore more articles in the Finance category

    Image for Israel strikes Tehran as Trump says US negotiating to end war
    Israel Strikes Tehran as Trump Says US Negotiating to End War
    Image for South Korea, Germany exposed to rare earths shortage, Australia's Arafura says
    South Korea, Germany Exposed to Rare Earths Shortage, Australia's Arafura Says
    Image for Currency markets drift as traders sceptical of US efforts to end Iran war
    Currency Markets Drift as Traders Sceptical of US Efforts to End Iran War
    Image for Stocks bounce and oil retreats on Mideast ceasefire reports
    Stocks Bounce and Oil Retreats on Mideast Ceasefire Reports
    Image for Equinor CEO says EU unlikely to increase Russian gas imports
    Equinor CEO Says EU Unlikely to Increase Russian Gas Imports
    Image for Openreach taps Google AI to speed fibre rollout, cut emissions
    Openreach Taps Google AI to Speed Fibre Rollout, Cut Emissions
    Image for UK consumer sentiment falls as Iran war rages, KPMG says
    UK Consumer Sentiment Falls as Iran War Rages, Kpmg Says
    Image for US oil prices fall on prospect of Middle East ceasefire easing supply disruption
    US Oil Prices Fall on Prospect of Middle East Ceasefire Easing Supply Disruption
    Image for Lamborghinis stranded in Sri Lanka as war disrupts Asia's used-car trade 
    Lamborghinis Stranded in Sri Lanka as War Disrupts Asia's Used-Car Trade 
    Image for Britain pilots social media bans, time limits and curfews for children
    Britain Pilots Social Media Bans, Time Limits and Curfews for Children
    Image for UK's Starmer, Saudi crown prince discussed ongoing Middle East conflict, Downing Street says
    UK's Starmer, Saudi Crown Prince Discussed Ongoing Middle East Conflict, Downing Street Says
    Image for Grifols approves IPO of its US biopharma business
    Grifols Approves IPO of Its US Biopharma Business
    View All Finance Posts
    Previous Finance PostUnderstanding Loan Servicing and Why It Matters
    Next Finance PostCross the Ages Raises $3.5M in Equity Round Led by Animoca Brands, and Lists on Major Exchanges